REDHAT-BUG-1890653: Low severity qemu vulnerability
A divide-by-zero issue was found in QEMU in the dwc-hsotg (dwc2) USB host controller emulation. More specifically, HCCHARMPS was read from a device register and later used as divisor without performing any sanity check. This could allow a malicious/buggy guest to crash the QEMU process on the host, resulting in a denial of service.
Upstream fix: https://lists.nongnu.org/archive/html/qemu-devel/2020-10/msg04263.html
Affected Software
Event History
Frequently Asked Questions
What is the severity of REDHAT-BUG-1890653?
The severity of REDHAT-BUG-1890653 is considered high due to its potential to crash the QEMU process.
How do I fix REDHAT-BUG-1890653?
To fix REDHAT-BUG-1890653, update to the latest version of QEMU that addresses this divide-by-zero vulnerability.
What causes the vulnerability REDHAT-BUG-1890653?
REDHAT-BUG-1890653 is caused by a divide-by-zero error in the USB host controller emulation in QEMU.
What are the potential impacts of REDHAT-BUG-1890653?
The potential impacts of REDHAT-BUG-1890653 include crashing the QEMU process and affecting the stability of the host system.
Which software is affected by REDHAT-BUG-1890653?
The affected software for REDHAT-BUG-1890653 is QEMU.